The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31babc4f24babc4f24ef83d99e
Apache Status Apache Server Status for extranets.ashurst.com.origin.highq.com (via 10.159.134.9) Server Version: Apache/2.4.57 (Win64) OpenSSL/3.0.8 mod_log_rotate/1.02 Server MPM: WinNT Apache Lounge VS17 Server built: Apr 3 2023 11:28:13 Current Time: Tuesday, 13-Feb-2024 15:21:57 Coordinated Universal Time Restart Time: Saturday, 03-Feb-2024 21:31:43 Coordinated Universal Time Parent Server Config. Generation: 1 Parent Server MPM Generation: 0 Server uptime: 9 days 17 hours 50 minutes 14 seconds Server load: -1.00 -1.00 -1.00 Total accesses: 1046103 - Total Traffic: 270.7 GB - Total Duration: 622092131 1.24 requests/sec - 337.2 kB/second - 271.4 kB/request - 594.676 ms/request 9 requests currently being processed, 1911 idle workers ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ______________________________________W_____KK___KK_K______KWK__ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMSSReqDurConnChildSlotClientProtocolVHostRequest 0-0172840/1/1_ 10713632650.00.000.00 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0172840/1/1_ 10713542850.00.000.00 10.227.44.52http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0172840/1838/1838_ 586268077380.062.8062.80 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/pcc.do/ImageStampList HTTP/1.1 0-0172844/13755/13755W 006188164336.11713.231713.23 bigipecomlh2.int.thomsonreuters.comhttp/1.1share.irwinmitchell.com:443POST /irwinmitchell/getPrivateMessages.action?metaData.fromActi 0-0172840/2542/2542_ 28019123885830.01229.551229.55 10.227.44.45http/1.1dealroom.nabarro.com:443GET /nabarro/pcc.do/Document/q/13-13/Text?DocumentID=uzNWmAG4Ks 0-0172840/26/26_ 117213294530.00.240.24 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0172840/1385/1385_ 10116676113533280.01116.401116.40 10.227.44.45http/1.1share.irwinmitchell.com:443POST /irwinmitchell/getRepositoryInfo.action?time=1707736530936 0-0172840/53560/53560_ 20250358623250.012534.7012534.70 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/pcc.do/ImageStampList HTTP/1.1 0-0172840/35492/35492_ 116217720440.010038.6210038.62 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-01728431/33870/33870K 08427290373960.19217.379217.37 10.227.44.45http/1.1share.irwinmitchell.com:443POST /irwinmitchell/folderTree.action?metaData.siteID=88561&met 0-01728414/28041/28041K 0632004831466.611262.6011262.60 10.227.44.45http/1.1share.irwinmitchell.com:443POST /irwinmitchell/getUserFilterStatusList.action?dZg3pbywZaM% 0-0172840/34877/34877_ 10116634182815430.07864.427864.42 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0172840/49027/49027_ 032328334030.021577.7121577.71 10.227.44.45http/1.1www.highq.com:443GET /.vscode/sftp.json HTTP/1.1 0-0172840/51906/51906_ 1176116307666820.011464.7511464.75 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-01728412/55861/55861K 04934223508180.910666.7910666.79 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/adminHome_v4.action?metaData.siteID=17140 HT 0-01728490/64492/64492K 192371090273665.023327.0123327.01 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/documentDetailJSON.action?metaData.siteID=84 0-0172840/50515/50515_ 58634296157850.016157.6516157.65 10.227.44.52http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-01728429/59317/59317K 28134869947713.216167.8616167.86 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/pcc.do/Document/q/4-4/Text?DocumentID=uo9by3 0-0172840/61327/61327_ 101167388291816680.010376.7810376.78 10.227.44.45http/1.1share.irwinmitchell.com:443POST /irwinmitchell/getRepositoryInfo.action?time=1707736530943 0-0172840/13258/13258_ 13164114070.02109.862109.86 10.227.44.52http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0172840/23673/23673_ 032121719540.03623.823623.82 ::1http/1.1 0-0172840/65981/65981_ 8164503782920.035692.0435692.04 10.227.44.45http/1.1share.irwinmitchell.com:443POST /irwinmitchell/getRepositoryInfo.action?time=1707837626329 0-0172840/48847/48847_ 101166584295469970.010574.0610574.06 10.227.44.45http/1.1share.irwinmitchell.com:443POST /irwinmitchell/getUploadInfo.action?time=1707736531259&for 0-0172840/55964/55964_ 276125292480150.014465.1514465.15 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-01728443/56025/56025K 1101285646841923.815267.0815267.08 10.227.44.45http/1.1collaborate.highq.com:443POST /sitepoint/getAllLikeAndCommentWrapper.action?3mOzaCosqhY% 0-0172841/33485/33485W 001699526475.15818.625818.62 10.227.44.45http/1.1www.highq.com:443GET /server-status HTTP/1.1 0-0172841/61834/61834K 1653366683936.29324.349324.34 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/pcc.do/Page/q/12?DocumentID=uaJlvvwmwHwks2nC 0-0172840/36546/36546_ 1171132224054460.08324.878324.87 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0172840/52657/52657_ 278821301011840.07235.917235.91 bigipecomlh2.int.thomsonreuters.comhttp/1.1www.highq.com:443GET /server-status?auto HTTP/1.1 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 41subcaches: 32, indexes per subcache: 88time left on oldest entries' objects: avg: 119 seconds, (range: 0...299)index usage: 1%, cache usage: 1%total entries stored since starting: 158822total entries replaced since starting: 0total entries expired since starting: 76237total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 433881 hit, 46342 misstotal removes since starting: 82558 hit, 1898 miss
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31acbc392aacbc392a7416ccab
Apache Status Apache Server Status for extranets.ashurst.com.origin.highq.com (via 10.159.134.7) Server Version: Apache/2.4.57 (Win64) OpenSSL/3.0.8 mod_log_rotate/1.02 Server MPM: WinNT Apache Lounge VS17 Server built: Apr 3 2023 11:28:13 Current Time: Tuesday, 06-Feb-2024 14:19:28 Coordinated Universal Time Restart Time: Saturday, 03-Feb-2024 21:31:45 Coordinated Universal Time Parent Server Config. Generation: 1 Parent Server MPM Generation: 0 Server uptime: 2 days 16 hours 47 minutes 43 seconds Server load: -1.00 -1.00 -1.00 Total accesses: 236639 - Total Traffic: 60.8 GB - Total Duration: 151285396 1.01 requests/sec - 273.1 kB/second - 269.2 kB/request - 639.309 ms/request 7 requests currently being processed, 1913 idle workers ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ________________________________________________________________ ___________________________________________K_K_KW____KK______K__ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMSSReqDurConnChildSlotClientProtocolVHostRequest 0-0199560/2/2_ 909570680.00.010.01 10.227.44.45http/1.1localhost:80GET /server-status?auto HTTP/1.1 0-0199560/6/6_ 14398323490.00.010.01 bigipecomlh2.int.thomsonreuters.comhttp/1.1www.highq.com:443GET /server-status?auto HTTP/1.1 0-0199560/7/7_ 90957254730.00.020.02 bigipecomlh2.int.thomsonreuters.comhttp/1.1www.highq.com:443GET /server-status?auto HTTP/1.1 0-0199566/11168/11168K 01241017490522.93777.663777.66 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/downloadUserAvatar.action?user.userId=46068& 0-0199560/967/967_ 13752267571180.0146.24146.24 10.227.44.52http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0199561/11504/11504K 148770725313.53986.633986.63 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/flag/flag_1218.gif?refreshCacheKey=20240113T 0-0199560/420/420_ 7671326549600.0241.43241.43 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0199562/5467/5467K 0142525138910.31810.491810.49 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/downloadUserAvatar.action?user.userId=26633& 0-0199568/10535/10535W 00892410364.94234.224234.22 10.227.44.45http/1.1www.highq.com:443GET /server-status HTTP/1.1 0-0199560/4183/4183_ 63241577080.02544.012544.01 10.227.44.45http/1.1www.highq.com:443GET /login.action HTTP/1.1 0-0199560/6947/6947_ 137522650031250.02103.902103.90 bigipecomlh2.int.thomsonreuters.comhttp/1.1www.highq.com:443GET /server-status?auto HTTP/1.1 0-0199560/10411/10411_ 76783275812980.01839.981839.98 bigipecomlh2.int.thomsonreuters.comhttp/1.1www.highq.com:443GET /server-status?auto HTTP/1.1 0-0199560/5753/5753_ 14397053188470.01565.221565.22 10.227.44.45http/1.1localhost:80GET /server-status?auto HTTP/1.1 0-0199561/15105/15105K 0368113731439.54111.984111.98 10.227.44.45http/1.1share.irwinmitchell.com:443GET /irwinmitchell/downloadUserAvatar.action?user.userId=47741& 0-0199561/14930/14930K 0157859149818.75816.395816.39 10.227.44.45http/1.1share.irwinmitchell.com:443POST /irwinmitchell/updateSitePage_v4.action?Ygva3zkpDFw%3D=TdP 0-0199560/18762/18762_ 58077418000.02269.852269.85 10.227.44.45http/1.1localhost:80GET /server-status?auto HTTP/1.1 0-0199560/15944/15944_ 583276652470.02222.052222.05 bigipecomlh2.int.thomsonreuters.comhttp/1.1www.highq.com:443GET /server-status?auto HTTP/1.1 0-0199560/13460/13460_ 63264649840.02634.632634.63 10.227.44.53http/1.1www.highq.com:443GET /healthcheck.html HTTP/1.1 0-0199560/15309/15309_ 1316104616290.04041.784041.78 bigipecomlh2.int.thomsonreuters.comhttp/1.1www.highq.com:443GET /server-status?auto HTTP/1.1 0-0199560/13311/13311_ 433287827390.02819.682819.68 bigipecomlh2.int.thomsonreuters.comhttp/1.1www.highq.com:443GET /server-status?auto HTTP/1.1 0-0199560/13661/13661_ 767022975178280.01178.611178.61 10.227.44.45http/1.1extranets.ashurst.com:443GET /ashurst/downloadUserAvatar.action?user.userId=29436&user.a 0-0199562/12334/12334K 042883780810.51938.571938.57 10.227.44.45http/1.1dealroom.nabarro.com:443POST /nabarro/getBulkDownloadStatus.action HTTP/1.1 0-0199560/21913/21913_ 032107675820.09672.329672.32 10.227.44.45http/1.1extranets.ashurst.com:443GET /s/833313e27333e2632313e2430313/_/;/META-INF/maven/com.atla 0-0199560/14540/14540_ 62675495310.03252.373252.37 10.227.44.45http/1.1www.highq.com:443GET /v2/_catalog HTTP/1.1 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 38subcaches: 32, indexes per subcache: 88time left on oldest entries' objects: avg: 145 seconds, (range: 1...297)index usage: 1%, cache usage: 1%total entries stored since starting: 39508total entries replaced since starting: 0total entries expired since starting: 21758total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 117500 hit, 8322 misstotal removes since starting: 17721 hit, 187 miss